MSMVPS.COM

The Ultimate Destination for Blogs by Current and Former Microsoft Most Valuable Professionals.
Welcome to MSMVPS.COM Sign in | Help
in Search

Harry Waldron - Corporate and Home Security

Latest Security Developments and Best Practices are shared to help keep users safe

Fake FedEx email contains bank password stealer

The new FedEx attacks have been adapted from the prior UPS attacks.  Any email especially noting account or billing issues should be verified in a safe manner, e.g., telephone call.  Please be careful with all email as these messages appear to be almost geniune.

http://blog.trendmicro.com/bogus-fedex-notifications-new-malware-courier-of-choice/

QUOTE: Remember the UPS spam runs that were popular last month? Spammers have chosen a different courier this time, but the message was basically the same

Posing as FedEx notifications, these email messages have the same format as their earlier UPS counterparts: tracking number (perhaps to make the message appear authentic), message body informing recipients that there was a problem with the delivery of a package, and a message urging the recipient to print the attached “invoice” to claim the “package”.

Even the attachment is of the same file type as those seen in the previous spam runs. The .ZIP file is an info stealer detected by Trend Micro as TSPY_ZBOT.MCS. ZBOT spyware are infamous keyloggers that are known to steal confidential information, such as those related to online banking credentials.

Only published comments... Aug 28 2008, 12:20 AM by Harry Waldron

Leave a Comment

(required) 
(optional)
(required) 
Submit
Powered by Community Server (Commercial Edition), by Telligent Systems